Information about your favorite browser: news, articles and more.




Polish hacker Michal Zalewski has found yet another flaw in Mozilla’s Firefox browser, this one havingfirefox2.jpg to do with memory corruption and possible system takeover. While he was at it, he also found an IE flaw that sets up malicious pages that won’t let visitors leave. And that taunt the trapped user while they’re at it–at least in his funny demo. He has posted a demo that displays a crash in Firefox that he says is caused by corrupted pointers. It also caused a crash when I visited it in IE, FWIW.
"Firefox is susceptible to a seemingly pretty nasty, and apparently easily exploitable memory corruption vulnerability.

" he writes. "When a location transition occurs and the structure of a document is modified from within onUnload event handler, freed DOM-related memory structures are left in inconsistent state, possibly leading to a remote compromise." Mozilla’s security people are looking into the flaw, which Mozilla has deemed critical. Security Watch – Browsers – Browsers Take a Bruising


Visit our Home Page



Popular Posts


Subscribe Social Bookmark



Dropped here by your Search Provider? Please use the same keyword in the Google box below to find whatever you are looking for.
Google
Web This Site